VMware vSphere 7.0/8.0 – ransomware operators exploit vulnerability for mass encryption

A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user management by re-creating the configured AD group (‚ESX Admins‘ by default) after it was deleted from AD VMware ESXi 7.0/8.0 – updates address multiple security vulnerabilities CVE-2024-37085 CVE-2024-37086 CVE-2024-37087

Leave a Reply

You must be logged in to post a comment.